Snyk has a proof-of-concept or detailed explanation of how to exploit this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade sudo-rs to version 0.2.10 or higher.
Affected versions of this package are vulnerable to Missing Password Field Masking via the password input. An attacker can obtain partial password input by waiting for a timeout to occur after a user begins entering their password but does not press return, causing the entered keystrokes to be echoed back to the console.